CVE-2013-1976
published 2013-07-09CVE-2013-1976: The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red…
PriorityP422medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.37%
29.5th percentile
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-initd.log.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | jboss_enterprise_web_server | — | — |
| redhat | jboss_enterprise_web_server | — | — |
CVSS provenance
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q878-9wf9-424m: The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1
ghsa_unreviewed·2022-05-14
CVE-2013-1976 [MEDIUM] CWE-59 GHSA-q878-9wf9-424m: The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-initd.log.
Red Hat
tomcat: Improper TOMCAT_LOG management in init script (DoS, ACE)
vendor_redhat·2013-05-28·CVSS 6.9
CVE-2013-1976 [MEDIUM] tomcat: Improper TOMCAT_LOG management in init script (DoS, ACE)
tomcat: Improper TOMCAT_LOG management in init script (DoS, ACE)
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-initd.log.
Statement: This flaw pertains to the init scripts provided by the RPM distribution of tomcat in various Red Hat products. ZIP distributions do not include init scripts, and are not affected by this flaw.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2013-08/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0869.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0870.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0871.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0872.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=927622http://lists.opensuse.org/opensuse-updates/2013-08/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0869.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0870.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0871.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0872.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=927622
2013-07-09
Published